Gaim 多个远程拒绝服务漏洞

漏洞信息详情

Gaim 多个远程拒绝服务漏洞

漏洞简介

远程攻击者可以借助Gaim 1.1.3之前版本,通过来自(1) AIM或(2) ICQ的缺陷SNAC封包实施拒绝服务攻击(无限循环)。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

Rob Flynn Gaim 1.0

Rob Flynn Gaim 1.1.3

http://gaim.sourceforge.net/downloads.php

Ubuntu gaim_1.0.0-1ubuntu1.2_amd64.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/g/gaim/gaim_1.0.0-1ubuntu1.2_amd64.deb

Ubuntu gaim_1.0.0-1ubuntu1.2_i386.deb

Ubuntu 4.10 (Warty Warthog)
http://security.ubuntu.com/ubuntu/pool/main/g/gaim/gaim_1.0.0-1ubuntu1.2_i386.deb

Ubuntu gaim_1.0.0-1ubuntu1.2_powerpc.deb

Ubuntu 4.10 (Warty Warthog)

http://security.ubuntu.com/ubuntu/pool/main/g/gaim/gaim_1.0.0-1ubuntu1.2_powerpc.deb

Rob Flynn Gaim 1.0.1

Fedora gaim-1.1.3-1.FC3.i386.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora gaim-1.1.3-1.FC3.x86_64.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora gaim-debuginfo-1.1.3-1.FC3.i386.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Fedora gaim-debuginfo-1.1.3-1.FC3.x86_64.rpm

RedHat Fedora Core 3

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

Rob Flynn Gaim 1.1.3

http://gaim.sourceforge.net/downloads.php

Rob Flynn Gaim 1.0.2

Rob Flynn Gaim 1.1.3

http://gaim.sourceforge.net/downloads.php

Rob Flynn Gaim 1.1.1

Rob Flynn Gaim 1.1.3

http://gaim.sourceforge.net/downloads.php

Rob Flynn Gaim 1.1.2

Rob Flynn Gaim 1.1.3

http://gaim.sourceforge.net/downloads.php

参考网址

来源US-CERT: Vulnerability Note

名称: VU#839280

链接:http://www.kb.cert.org/vuls/id/839280

来源: XF

名称: gaim-snac-dos(19380)

链接:http://xforce.iss.net/xforce/xfdb/19380

来源: REDHAT

名称: RHSA-2005:432

链接:http://www.redhat.com/support/errata/RHSA-2005-432.html

来源: REDHAT

名称: RHSA-2005:215

链接:http://www.redhat.com/support/errata/RHSA-2005-215.html

来源: GENTOO

名称: GLSA-200503-03

链接:http://www.gentoo.org/security/en/glsa/glsa-200503-03.xml

来源: DEBIAN

名称: DSA-716

链接:http://www.debian.org/security/2005/dsa-716

来源: SECUNIA

名称: 14322

链接:http://secunia.com/advisories/14322

来源: gaim.sourceforge.net

链接:http://gaim.sourceforge.net/security/index.php?id=10

来源: BID

名称: 12589

链接:http://www.securityfocus.com/bid/12589

来源: FEDORA

名称: FLSA:158543

链接:http://www.securityfocus.com/archive/1/archive/1/426078/100/0/threaded

来源: SUSE

名称: SUSE-SA:2005:036

链接:http://www.novell.com/linux/security/advisories/2005_36_sudo.html

来源: MANDRAKE

名称: MDKSA-2005:049

链接:http://www.mandriva.com/security/advisories?name=MDKSA-2005:049

来源: BUGTRAQ

名称: 20050225 [USN-85-1] Gaim vulnerabilities

链接:http://marc.theaimsgroup.com/?l=bugtraq&m=110935655500670&w=2

来源: CONECTIVA

名称: CLA-2005:933

链接:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000933

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享